CommuniGate Pro LISTS Module Malformed Multipart Message DoS

medium Nessus Plugin ID 17985

Synopsis

The remote mail server is prone to a denial of service attack.

Description

According to its banner, the version of CommuniGate Pro running on the remote host has an unspecified denial of service vulnerability arising from a flaw in the LISTS module. An attacker may be able to crash the server by sending a malformed multipart message to a list.

Solution

Upgrade to CommuniGate Pro 4.3c3 or newer.

See Also

http://www.stalker.com/CommuniGatePro/History43.html

Plugin Details

Severity: Medium

ID: 17985

File Name: communigatepro_list_dos.nasl

Version: 1.16

Type: remote

Published: 4/6/2005

Updated: 7/6/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/a:communigate:communigate_pro_core_server

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 3/15/2005

Reference Information

CVE: CVE-2005-1007

BID: 13001